Contact Form 7 To Database Extension is a WordPress plugin that extends the popular Contact Form 7 form-builder to store submissions in a database, serving a narrow user base within WordPress-dependent sites. The identified vulnerability exposure centers on the plugin itself; current severity, exploitation, and patch status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Contact Form 7 To Database Extension Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-9035CRITICAL CSV Injection vulnerability in ExportToCsvUtf8.php of the Contact Form 7 to Database Extension plugin 2.10.32 for WordPress allows remote attackers to inject spreadsheet formulas i | Apr 4, 2018 | 9.6 | 42 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Contact Form 7 To Database Extension Project.
Media articles that mention a CVE ID that affects a product developed by Contact Form 7 To Database Extension Project — matched by CVE ID, not by vendor name.